312-50 Exam Details

  • Exam Code
    :312-50
  • Exam Name
    :Certified Ethical Hacker
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :765 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50 Online Questions & Answers

  • Question 111:

    Lauren is performing a network audit for her entire company. The entire network is comprised of around 500 computers. Lauren starts an ICMP ping sweep by sending one IP packet to the broadcast address of the network, but only receives responses from around five hosts. Why did this ping sweep only produce a few responses?

    A. Only Windows systems will reply to this scan.
    B. A switched network will not respond to packets sent to the broadcast address.
    C. Only Linux and Unix-like (Non-Windows) systems will reply to this scan.
    D. Only servers will reply to this scan.

  • Question 112:

    A digital signature is simply a message that is encrypted with the public key instead of the private key.

    A. True
    B. False

  • Question 113:

    Drag the term to match with it's description.

    Select and Place:

  • Question 114:

    When a malicious hacker identifies a target and wants to eventually compromise this target, what would be the first step the attacker would perform?

    A. Cover his tracks by eradicating the log files
    B. Gain access to the remote computer for identification of venue of attacks
    C. Perform a reconnaissance of the remote target for identification of venue of attacks
    D. Always starts with a scan in order to quickly identify venue of attacks

  • Question 115:

    What is a NULL scan?

    A. A scan in which all flags are turned off
    B. A scan in which certain flags are off
    C. A scan in which all flags are on
    D. A scan in which the packet size is set to zero
    E. A scan with a illegal packet size

  • Question 116:

    Darren is the network administrator for Greyson and Associates, a large law firm in Houston. Darren is responsible for all network functions as well as any digital forensics work that is needed. Darren is examining the firewall logs one morning and notices some unusual activity. He traces the activity target to one of the firm's internal file servers and finds that many documents on that server were destroyed. After performing some calculations, Darren finds the damage to be around $75,000 worth of lost data. Darren decides that this incident should be handled and resolved within the same day of its discovery.

    What incident level would this situation be classified as?

    A. This situation would be classified as a mid-level incident
    B. Since there was over $50,000 worth of loss, this would be considered a high-level incident
    C. Because Darren has determined that this issue needs to be addressed in the same day it was discovered, this would be considered a low-level incident
    D. This specific incident would be labeled as an immediate-level incident

  • Question 117:

    Travis works primarily from home as a medical transcriptions.

    He just bought a brand new Dual Core Pentium Computer with over 3 GB of RAM. He uses voice recognition software is processor intensive, which is why he bought the new computer. Travis frequently has to get on the Internet to do research on what he is working on. After about two months of working on his new computer, he notices that it is not running nearly as fast as it used to.

    Travis uses antivirus software, anti-spyware software and always keeps the computer up-to-date with Microsoft patches.

    After another month of working on the computer, Travis computer is even more noticeable slow. Every once in awhile, Travis also notices a window or two pop-up on his screen, but they quickly disappear. He has seen these windows show up, even when he has not been on the Internet. Travis is really worried about his computer because he spent a lot of money on it and he depends on it to work. Travis scans his through Windows Explorer and check out the file system, folder by folder to see if there is anything he can find. He spends over four hours pouring over the files and folders and can't find anything but before he gives up, he notices that his computer only has about 10 GB of free space available. Since has drive is a 200 GB hard drive, Travis thinks this is very odd.

    Travis downloads Space Monger and adds up the sizes for all the folders and files on his computer. According to his calculations, he should have around 150 GB of free space. What is mostly likely the cause of Travi's problems?

    A. Travis's Computer is infected with stealth kernel level rootkit
    B. Travi's Computer is infected with Stealth Torjan Virus
    C. Travis's Computer is infected with Self-Replication Worm that fills the hard disk space
    D. Logic Bomb's triggered at random times creating hidden data consuming junk files

  • Question 118:

    What does the following command achieve?

    Telnet

    HEAD /HTTP/1.0

    A. This command returns the home page for the IP address specified
    B. This command opens a backdoor Telnet session to the IP address specified
    C. This command returns the banner of the website specified by IP address
    D. This command allows a hacker to determine the sites security
    E. This command is bogus and will accomplish nothing

  • Question 119:

    A buffer overflow occurs when a program or process tries to store more data in a buffer (temporary data storage area) then it was intended to hold. What is the most common cause of buffer overflow in software today?

    A. Bad permissions on files.
    B. High bandwidth and large number of users.
    C. Usage of non standard programming languages.
    D. Bad quality assurance on software produced.

  • Question 120:

    What ports should be blocked on the firewall to prevent NetBIOS traffic from not coming through the firewall if your network is comprised of Windows NT, 2000, and XP?(Choose all that apply.

    A. 110
    B. 135
    C. 139
    D. 161
    E. 445
    F. 1024

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.